SIEM Architect & Engineer (CISO)
Core
Design, implement, and manage Splunk infrastructure and Security Operation Center (SecOps) to monitor, analyze, and correlate security data from diverse sources.
Role type
Senior Splunk Architect & Engineer (Security)
Builds
Splunk indexer clusters, search head clusters, custom apps, technology add-ons, and correlation searches for threat detection.
Domain
Cybersecurity / SIEM / Financial Technology
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Splunk architecture (indexer/search head clustering), SPL, Python, Bash, PowerShell, SQL, Git, Terraform, Linux (RHEL), Windows, Kubernetes, network protocols
Preferred skills
Splunk Architect/Consultant certification, SOAR, OCI cloud, regular expressions, data pipelines
Responsibilities
Design and implement SecOps with Splunk, onboard data sources and create CIM compliant data mapping, build custom scripts and Splunk apps, manage role-based access control, design correlation searches, assist security analysts, drive SecOps operational model transformation
Seniority
Senior, hands-on IC